4

CVE-2015-7395

IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.8 IFIX005, and 7.6.0 before 7.6.0.2 FP002; Maximo Asset Management 7.5.0 before 7.5.0.8 IFIX005, 7.5.1, and 7.6.0 before 7.6.0.2 FP002 for SmartCloud Control Desk; and Maximo Asset Management 7.1 through 7.1.1.13 and 7.2 for Tivoli IT Asset Management for IT and certain other products allow remote authenticated users to bypass intended work-order change restrictions via unspecified vectors.

Data is provided by the National Vulnerability Database (NVD)
IbmMaximo Asset Management Version7.1
IbmMaximo Asset Management Version7.1.1
IbmMaximo Asset Management Version7.1.1.1
IbmMaximo Asset Management Version7.1.1.2
IbmMaximo Asset Management Version7.1.1.5
IbmMaximo Asset Management Version7.1.1.6
IbmMaximo Asset Management Version7.1.1.7
IbmMaximo Asset Management Version7.1.1.8
IbmMaximo Asset Management Version7.1.1.9
IbmMaximo Asset Management Version7.1.1.10
IbmMaximo Asset Management Version7.1.1.11
IbmMaximo Asset Management Version7.1.1.12
IbmMaximo Asset Management Version7.1.1.13
IbmMaximo Asset Management Version7.5.0.0
IbmMaximo Asset Management Version7.5.0.1
IbmMaximo Asset Management Version7.5.0.2
IbmMaximo Asset Management Version7.5.0.3
IbmMaximo Asset Management Version7.5.0.4
IbmMaximo Asset Management Version7.5.0.5
IbmMaximo Asset Management Version7.5.0.6
IbmMaximo Asset Management Version7.5.0.7
IbmMaximo Asset Management Version7.5.0.8
IbmMaximo Asset Management Version7.5.0.9
IbmMaximo Asset Management Version7.6.0.0
IbmMaximo Asset Management Version7.6.0.1
IbmMaximo Asset Management Version7.6.0.2
IbmMaximo For Government Version7.1
IbmMaximo For Government Version7.5.0.0
IbmMaximo For Government Version7.5.0.1
IbmMaximo For Government Version7.5.0.2
IbmMaximo For Government Version7.5.0.3
IbmMaximo For Government Version7.5.0.4
IbmMaximo For Government Version7.5.0.5
IbmMaximo For Government Version7.5.0.6
IbmMaximo For Life Sciences Version7.1
IbmMaximo For Life Sciences Version7.5.0.0
IbmMaximo For Life Sciences Version7.5.0.1
IbmMaximo For Life Sciences Version7.5.0.2
IbmMaximo For Life Sciences Version7.5.0.3
IbmMaximo For Life Sciences Version7.5.0.4
IbmMaximo For Life Sciences Version7.5.0.5
IbmMaximo For Life Sciences Version7.5.0.6
IbmMaximo For Nuclear Power Version7.1
IbmMaximo For Nuclear Power Version7.5.0.0
IbmMaximo For Nuclear Power Version7.5.0.1
IbmMaximo For Nuclear Power Version7.5.0.2
IbmMaximo For Nuclear Power Version7.5.0.3
IbmMaximo For Nuclear Power Version7.5.0.4
IbmMaximo For Nuclear Power Version7.5.0.5
IbmMaximo For Nuclear Power Version7.5.0.6
IbmMaximo For Oil And Gas Version7.1
IbmMaximo For Oil And Gas Version7.5.0.0
IbmMaximo For Oil And Gas Version7.5.0.1
IbmMaximo For Oil And Gas Version7.5.0.2
IbmMaximo For Oil And Gas Version7.5.0.3
IbmMaximo For Oil And Gas Version7.5.0.4
IbmMaximo For Oil And Gas Version7.5.0.5
IbmMaximo For Oil And Gas Version7.5.0.6
IbmMaximo For Transportation Version7.5.0.0
IbmMaximo For Transportation Version7.5.0.1
IbmMaximo For Transportation Version7.5.0.2
IbmMaximo For Transportation Version7.5.0.3
IbmMaximo For Transportation Version7.5.0.4
IbmMaximo For Transportation Version7.5.0.5
IbmMaximo For Transportation Version7.5.0.6
IbmMaximo For Utilities Version7.1
IbmMaximo For Utilities Version7.5.0.0
IbmMaximo For Utilities Version7.5.0.1
IbmMaximo For Utilities Version7.5.0.2
IbmMaximo For Utilities Version7.5.0.3
IbmMaximo For Utilities Version7.5.0.4
IbmMaximo For Utilities Version7.5.0.5
IbmMaximo For Utilities Version7.5.0.6
IbmSmartcloud Control Desk Version7.5
IbmSmartcloud Control Desk Version7.6
IbmTivoli Service Request Manager Version7.2.0.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.11% 0.265
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:N/I:P/A:N
CWE-284 Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.